[arch-general] ensuring integrity of sources (was: [arch-dev-public] todo list for moving http -> https sources)

Bennett Piater bennett at piater.name
Mon Oct 31 17:14:35 UTC 2016


On 10/31/2016 06:04 PM, Levente Polyak wrote:
> On the other side we have a dev/TU authenticating the buildscript.
> Both cover certain areas but are still independent and one does not make
> the other futile.

Since this thread is helpfully on arch-general now, I want to quickly
chime in and say that I would really like authenticated buildscripts at
some point :)

Cheers,
Bennett

-- 
GPG fingerprint: 871F 1047 7DB3 DDED 5FC4 47B2 26C7 E577 EF96 7808

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 520 bytes
Desc: OpenPGP digital signature
URL: <https://lists.archlinux.org/pipermail/arch-general/attachments/20161031/0186715e/attachment.asc>


More information about the arch-general mailing list